Patentable/Patents/US-12010003
US-12010003

Systems and methods for deploying automated diagnostic engines for identification of network controls status

PublishedJune 11, 2024
Assigneenot available in USPTO data we have
Inventorsnot available in USPTO data we have
Technical Abstract

Systems, computer program products, and methods are described herein for identifying network control gaps in an automated fashion. The present disclosure is configured to execute instructions to deploy one or more autonomous programs on a network infrastructure; continually monitor feedback data received from the one or more autonomous programs; based on the feedback data received from the one or more autonomous programs, determine that the one or more autonomous programs has circumvented one or more network control policies; analyze the feedback data to determine how the one or more autonomous programs has circumvented the one or more network control policies; and execute instructions to pause access to one or more systems or elevate one or more security requirements in response to determining that the one or more autonomous programs has circumvented one or more network control policies.

Patent Claims
14 claims

Legal claims defining the scope of protection. Each claim is shown in both the original legal language and a plain English translation.

Claim 2

Original Legal Text

2. The system of claim 1, wherein the network infrastructure comprises multiple devices and operating systems including servers, mobile device, and smart devices.

Plain English Translation

This invention relates to a network infrastructure system designed to manage and integrate diverse computing devices and operating systems, including servers, mobile devices, and smart devices. The system addresses the challenge of interoperability and centralized management in heterogeneous network environments, where different devices and operating systems often lack seamless communication and coordination. The infrastructure enables unified control, monitoring, and data exchange across these varied devices, ensuring efficient operation and security. The system may include features such as automated device discovery, policy enforcement, and real-time monitoring to maintain performance and security standards. By supporting multiple device types and operating systems, the infrastructure simplifies administration and reduces compatibility issues, allowing organizations to deploy and manage a diverse range of devices within a single, cohesive framework. The system may also incorporate security protocols to protect data and prevent unauthorized access, ensuring compliance with industry regulations. Overall, the invention provides a scalable and adaptable solution for managing complex, multi-device network environments.

Claim 3

Original Legal Text

3. The system of claim 1, wherein the one or more network control policies further comprise a user permissions level.

Plain English Translation

A system for managing network access and control policies includes a mechanism to enforce user permissions levels as part of its network control policies. The system monitors network traffic and applies predefined rules to regulate data flow between devices. These rules can include restrictions based on user roles, ensuring that only authorized users can access specific network resources. The permissions level defines the scope of access, such as read-only, write, or administrative privileges, and can be dynamically adjusted based on user authentication or other contextual factors. The system may also integrate with authentication servers to verify user identities before applying the appropriate permissions. This approach enhances security by preventing unauthorized access and ensuring that users operate within their designated access levels. The system can be deployed in enterprise environments to manage network resources efficiently while maintaining compliance with security policies.

Claim 4

Original Legal Text

4. The system of claim 3, wherein circumventing the one or more network control policies further comprises elevating the user permissions level without proper authority.

Plain English Translation

A system for detecting and preventing unauthorized circumvention of network control policies is disclosed. The system operates in a networked computing environment where network administrators enforce access restrictions to maintain security and compliance. The problem addressed is the ability of malicious actors or unauthorized users to bypass these policies, often by exploiting vulnerabilities or misconfigurations in the network infrastructure. The system monitors network traffic and user activities to identify attempts to circumvent control policies. This includes detecting unauthorized elevation of user permissions, where a user gains higher-level access without proper authorization. The system employs real-time analysis of network events, user behavior patterns, and permission changes to flag suspicious activities. When such an attempt is detected, the system can automatically block the action, alert administrators, or log the event for further investigation. The system integrates with existing network security tools and can be deployed in various network architectures, including cloud-based and on-premises environments. It is designed to adapt to different policy enforcement mechanisms and can be customized to detect specific types of policy violations. The goal is to enhance network security by proactively identifying and mitigating unauthorized access attempts, thereby reducing the risk of data breaches and policy violations.

Claim 5

Original Legal Text

5. The system of claim 1, wherein the one or more network control policies further comprise access to a user account.

Plain English Translation

A system for managing network control policies includes mechanisms to regulate access to network resources and services. The system enforces policies that determine which users or devices can access specific resources, ensuring secure and controlled network operations. A key feature of this system is the ability to incorporate user account access into the network control policies. This means that the policies can be configured to grant or restrict access based on user authentication, authorization, and account status. By integrating user account management with network control policies, the system provides a unified approach to security and access management, reducing the risk of unauthorized access and improving overall network security. The system dynamically applies these policies to ensure that only authorized users can access designated resources, enhancing both security and operational efficiency. This approach is particularly useful in environments where fine-grained access control is required, such as enterprise networks, cloud services, or multi-tenant systems. The system may also include additional features like policy enforcement mechanisms, monitoring tools, and reporting capabilities to track and audit access activities. By combining user account access with network control policies, the system offers a comprehensive solution for managing network security and access permissions.

Claim 6

Original Legal Text

6. The system of claim 5, wherein circumventing the one or more network control policies further comprises accessing the user account without proper authentication.

Plain English Translation

A system for detecting and preventing unauthorized access to network resources involves monitoring network traffic to identify attempts to bypass network control policies. The system specifically detects when a user account is accessed without proper authentication, which is a common method for circumventing security measures. The system includes a monitoring module that analyzes network traffic patterns to identify suspicious activities, such as unauthorized access attempts. It also includes a policy enforcement module that applies predefined network control policies to block or restrict such activities. Additionally, the system may include a reporting module that logs and alerts administrators about detected policy violations. The system is designed to operate within a network infrastructure, such as a corporate or institutional network, to ensure compliance with security policies and prevent unauthorized access to sensitive data or resources. The system may also integrate with existing authentication mechanisms to verify the legitimacy of access attempts and enforce multi-factor authentication where necessary. By detecting and blocking unauthorized access, the system helps maintain the integrity and security of the network.

Claim 8

Original Legal Text

8. The computer program product of claim 7, wherein the network infrastructure comprises multiple devices and operating systems including servers, mobile device, and smart devices.

Plain English Translation

This invention relates to a computer program product designed to manage and optimize network infrastructure comprising multiple devices and operating systems, including servers, mobile devices, and smart devices. The network infrastructure is configured to support a distributed computing environment where tasks are dynamically allocated across different devices based on their capabilities, availability, and current workload. The system includes a central management module that monitors the performance and status of each device in the network, ensuring efficient resource utilization and minimizing latency. The program product also includes a security module that enforces access controls and encryption protocols to protect data transmitted between devices. Additionally, the system supports interoperability between different operating systems and device types, allowing seamless communication and task coordination. The invention aims to improve scalability, reliability, and security in heterogeneous network environments by dynamically adapting to changes in device availability and network conditions. The program product may also include a user interface for administrators to configure settings, monitor performance, and troubleshoot issues across the distributed network.

Claim 9

Original Legal Text

9. The computer program product of claim 7, wherein the one or more network control policies further comprise a user permissions level.

Plain English Translation

A system and method for managing network access control policies in a computing environment. The invention addresses the challenge of securely and efficiently controlling network access based on user permissions and other contextual factors. The system includes a network control policy module that enforces access rules, which may be dynamically adjusted based on user permissions levels. These permissions levels define the scope of access granted to different users or user groups, ensuring that only authorized individuals can perform specific actions within the network. The policies may also incorporate additional criteria, such as time-based restrictions, device authentication, or location-based access controls, to further enhance security. The system dynamically evaluates these policies in real-time to determine whether to grant or deny access requests, providing a flexible and adaptive security framework. By integrating user permissions levels into the network control policies, the invention ensures that access rights are consistently enforced according to predefined security protocols, reducing the risk of unauthorized access or data breaches. The solution is particularly useful in environments where granular control over network resources is required, such as enterprise networks or cloud-based systems.

Claim 10

Original Legal Text

10. The computer program product of claim 9, wherein circumventing the one or more network control policies further comprises elevating the user permissions level without proper authority.

Plain English Translation

This invention relates to network security and addresses the problem of unauthorized circumvention of network control policies. The technology involves detecting and preventing unauthorized elevation of user permissions within a networked computing environment. Network control policies are designed to restrict access and operations based on user permissions, but malicious actors or compromised systems may attempt to bypass these restrictions. The invention provides a method to identify and block such unauthorized permission elevation attempts, ensuring that users operate only within their authorized access levels. The system monitors network activity for signs of policy circumvention, such as unauthorized privilege escalation, and takes corrective actions to maintain security. This includes detecting when a user or process attempts to elevate permissions beyond what is permitted by the network's security policies, even if the attempt is disguised or indirect. The solution enhances network security by enforcing strict adherence to defined access controls, preventing unauthorized actions that could lead to data breaches or system compromises. The invention is particularly useful in environments where strict compliance with security policies is critical, such as enterprise networks, financial institutions, or government systems. By proactively identifying and mitigating unauthorized permission elevation, the system helps maintain the integrity and confidentiality of networked resources.

Claim 11

Original Legal Text

11. The computer program product of claim 7, wherein the one or more network control policies further comprise access to a user account.

Plain English Translation

A system and method for managing network control policies in a computing environment involves dynamically enforcing access restrictions based on user account credentials. The invention addresses the challenge of securing network resources by integrating user account authentication with network policy enforcement. When a user attempts to access a network resource, the system verifies the user's credentials and applies predefined policies that restrict or permit access based on the user's account status, privileges, or attributes. These policies may include permissions for specific applications, data repositories, or network segments, ensuring that only authorized users can interact with sensitive resources. The system dynamically updates access controls in response to changes in user account status, such as role modifications or security breaches, reducing the risk of unauthorized access. By linking network policies to user accounts, the invention provides a scalable and centralized approach to managing access across distributed computing environments, improving security and compliance. The solution is particularly useful in enterprise networks where granular control over user permissions is critical.

Claim 12

Original Legal Text

12. The computer program product of claim 11, wherein circumventing the one or more network control policies further comprises accessing the user account without proper authentication.

Plain English Translation

This invention relates to computer security, specifically methods for detecting and preventing unauthorized access to network resources. The problem addressed is the circumvention of network control policies, particularly when attackers bypass authentication mechanisms to access user accounts without proper credentials. The invention involves a computer program product that monitors network activity to identify unauthorized access attempts. It detects when a user account is accessed without proper authentication, which may include bypassing login procedures, exploiting vulnerabilities, or using stolen credentials. The system analyzes network traffic patterns, authentication logs, and user behavior to flag suspicious activity. Once detected, the system can trigger security measures such as account lockouts, alerts, or further investigation. The invention also includes mechanisms to log and report these incidents for compliance and forensic analysis. By identifying and mitigating unauthorized access, the system enhances network security and reduces the risk of data breaches or unauthorized data manipulation. The solution is designed to integrate with existing network infrastructure, providing real-time monitoring and response capabilities.

Claim 14

Original Legal Text

14. The method of claim 13, wherein the one or more network control policies further comprise a user permissions level.

Plain English Translation

A system and method for managing network access control policies includes a network control policy enforcement module that applies predefined rules to regulate network traffic. The system monitors network activity and dynamically adjusts access permissions based on detected conditions, such as user behavior, device status, or security threats. The policies may include restrictions on data transfer rates, bandwidth allocation, or access to specific network resources. Additionally, the system incorporates a user permissions level within the network control policies to further refine access control. This level defines the scope of actions a user or device can perform, such as read-only access, administrative privileges, or restricted data handling. The system may also log policy violations and generate alerts for further investigation. The dynamic adjustment of policies ensures adaptive security and efficient resource utilization, addressing challenges in maintaining secure and optimized network environments.

Claim 15

Original Legal Text

15. The method of claim 14, wherein circumventing the one or more network control policies further comprises elevating the user permissions level without proper authority.

Plain English Translation

A system and method for bypassing network control policies involves unauthorized elevation of user permissions to circumvent security restrictions. The method operates within a networked computing environment where access to certain resources or actions is governed by predefined control policies. These policies are typically enforced to maintain security, compliance, or operational integrity. The invention addresses the problem of unauthorized access by exploiting vulnerabilities in permission management systems. The method includes detecting and exploiting weaknesses in authentication or authorization mechanisms to escalate user privileges beyond those granted by legitimate authorities. This may involve bypassing multi-factor authentication, exploiting software bugs, or manipulating system configurations. The unauthorized elevation of permissions allows the user to perform actions or access data that would otherwise be restricted, such as modifying system settings, accessing sensitive information, or executing privileged commands. The method may also include techniques to conceal the elevated permissions from monitoring systems, such as altering logs or using obfuscation methods. The invention is particularly relevant in environments where strict access controls are enforced, such as enterprise networks, financial systems, or government infrastructure. The unauthorized elevation of permissions poses significant security risks, including data breaches, system compromise, and regulatory violations. The method may be used by malicious actors to gain unauthorized control over networked systems or by security researchers to identify and remediate vulnerabilities in permission management systems.

Claim 16

Original Legal Text

16. The method of claim 13, wherein the one or more network control policies further comprise access to a user account.

Plain English Translation

A system and method for managing network control policies includes dynamically adjusting access permissions based on user behavior and contextual factors. The invention addresses the problem of static security policies that fail to adapt to evolving threats or changing user needs, leading to either excessive access risks or overly restrictive limitations that hinder productivity. The method involves monitoring user activities within a network to detect patterns indicative of security risks or policy violations. Machine learning algorithms analyze these patterns to identify anomalies or deviations from expected behavior. Based on this analysis, the system dynamically updates network control policies to restrict or grant access to resources, including user accounts, in real-time. The policies may also incorporate contextual factors such as time of day, device location, or user role to further refine access decisions. By continuously adapting access controls, the system enhances security while maintaining usability. The method ensures that user accounts are only accessible under appropriate conditions, reducing the risk of unauthorized access or data breaches. The dynamic nature of the policies allows for proactive threat mitigation without requiring manual intervention, improving overall network security efficiency.

Claim 17

Original Legal Text

17. The method of claim 16, wherein circumventing the one or more network control policies further comprises accessing the user account without proper authentication.

Plain English Translation

A system and method for bypassing network control policies involves unauthorized access to user accounts without proper authentication. The method includes detecting network control policies that restrict access to certain resources or services, then circumventing these policies by exploiting vulnerabilities or weaknesses in the network's security mechanisms. Specifically, the method involves accessing a user account without proper authentication, such as bypassing login credentials, exploiting session hijacking, or leveraging stolen or weak authentication tokens. The system may also include monitoring network traffic to identify policy enforcement points and dynamically adapting attack strategies to evade detection. The method may further involve maintaining persistent access to compromised accounts or systems to continue unauthorized activities. The approach may be used in cybersecurity testing to identify vulnerabilities in network security policies or by malicious actors to gain unauthorized access to protected resources. The system may include modules for policy detection, authentication bypass, and persistent access maintenance, ensuring continuous evasion of network controls.

Classification Codes (CPC)

Cooperative Patent Classification codes for this invention. Click any code to explore related patents in that topic.

Patent Metadata

Filing Date

January 26, 2023

Publication Date

June 11, 2024

Want to explore more patents?

Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.

Citation & reuse

Analysis on this page is generated by Patentable — an AI-powered patent intelligence platform. AI-generated summaries, explanations, FAQs, and analysis may be reused with attribution and a visible link back to the canonical URL below. Patent abstracts and claims are USPTO public domain.

Cite as: Patentable. “Systems and methods for deploying automated diagnostic engines for identification of network controls status” (US-12010003). https://patentable.app/patents/US-12010003

© 2026 Nomic Interactive Technology LLC. Machine-readable context available at /api/llm-context/US-12010003. See llms.txt for full attribution policy.